Advertisement
Help Keep Boards Alive. Support us by going ad free today. See here: https://subscriptions.boards.ie/.
https://www.boards.ie/group/1878-subscribers-forum

Private Group for paid up members of Boards.ie. Join the club.
Hi all, please see this major site announcement: https://www.boards.ie/discussion/2058427594/boards-ie-2026

Stryker cyberattack

  • 12-03-2026 04:29PM
    #1
    Registered Users, Registered Users 2 Posts: 1,209 ✭✭✭


    I'm surprised there isn't a thread on this. It seems like they may not be able to return to business as usual for at least some weeks. Ironically, I came across this news clip below that had been put up around a week ago, warning of the very possibility of a wiper cyberattack.



Comments

  • Moderators, Recreation & Hobbies Moderators Posts: 13,592 Mod ✭✭✭✭igCorcaigh


    I think their EU HQ is here in Cork?

    I had to say, as I am from Cork, like. In case you didn't know.

    Any personal data risk to the employees here in Cork?



  • Moderators, Computer Games Moderators, Technology & Internet Moderators, Help & Feedback Category Moderators Posts: 26,945 CMod ✭✭✭✭Spear


    The details I've seen on a Linkedin article suggest personal info isn't at risk. What the attackers compromised was the provisioning and device management system, Intune, which was then used to remotely wipe all the companies devices at once.



  • Moderators, Recreation & Hobbies Moderators Posts: 13,592 Mod ✭✭✭✭igCorcaigh


    Feck… some attack. I wonder if other companies are at risk from the same Intune system… :o



  • Moderators, Computer Games Moderators, Technology & Internet Moderators, Help & Feedback Category Moderators Posts: 26,945 CMod ✭✭✭✭Spear


    No idea at this point, there's nothing on how it was compromised, so no way to tell. If there was an exploit going round for it, most attackers would sit on it, and get more useful and sellable stuff like data out. A mass wipe like this is more in the category of attention seeking stunt, not the for profit acts of most.



  • Moderators, Category Moderators, Arts Moderators, Sports Moderators, Paid Member Posts: 55,565 CMod ✭✭✭✭magicbastarder


    socially engineered access to stryker's intune tenant, or managed to get credentials in some other way? most likely explanation.



  • Advertisement
  • Registered Users, Registered Users 2 Posts: 887 ✭✭✭eastie17


    only if they have personal data on their work drvice, then it’s with the baddies now



  • Moderators, Recreation & Hobbies Moderators Posts: 13,592 Mod ✭✭✭✭igCorcaigh


    What do the Iranians have against Stryker?



  • Registered Users, Registered Users 2, Paid Member Posts: 9,292 ✭✭✭cml387


    I doubt Stryker was the target as such, but were compromised due to some vulnerability in their system.



  • Registered Users, Registered Users 2 Posts: 4,149 ✭✭✭Pauliedragon


    It's American and they have ties to Isreal. I guy I know works in the Cork one and he's been told to go into work tonight.



  • Registered Users, Registered Users 2 Posts: 4,663 ✭✭✭Patrick2010


    Heard on newstalk this morning that the company got a big contract from the American government so that’s why they were targeted. Apparently there was no demand for money so that’s why they thought it was a terrorist attack



  • Advertisement
  • Registered Users, Registered Users 2 Posts: 14,323 ✭✭✭✭LambshankRedemption


    At no point in that video does it mention Stryker.

    Ive been working in Cybersecurity and from time to use the Iranian Exploit database for my job. .

    I dont get why this thread was created. WIll their be cyber attacks against the US? Well duh! Of course, but they are going on all the time any way.



  • Registered Users, Registered Users 2, Paid Member Posts: 29,799 ✭✭✭✭_Kaiser_


    My main takeaway from the OP's video was it was a slow news hour - their "protestors gathering" was about 15/20 people standing around while the reporter tried to fill his few minutes.



  • Registered Users, Registered Users 2 Posts: 1,209 ✭✭✭Escapees


    Of course the video doesn't mention Stryker specifically - sure if they had that sort of intelligence, the attack would never have occurred... ??!

    Anyway, the fact that it was a wiper type attack means 'some' data most certainly is irretrievably lost. I've seen IT backup systems in companies not working for months on end before any action is taken. That's the scary thing for me, given that many of Stryker's servers, and not just mobile devices and laptops, were apparently wiped.

    Stryker and the general news feeds have been super quiet since the story first broke. My sense is it's a very big mess for Stryker and getting all their IT systems back on track is not going to happen any time soon. I'll be happy to be wrong on this though...

    As for the Intune device management system that was used to wipe workers' devices, it seems crazy on the surface of it that such a system would allow erasing of ALL connected devices since this would almost never be a real world requirement. Even a limit of 10-50 devices per day seems more than reasonable. But hey, it's apparently a Microsoft product, so go figure.



  • Registered Users, Registered Users 2 Posts: 5,158 ✭✭✭opus


    Where I work is going gung-ho moving to Intune at the moment, will be interesting to see if this makes any difference. Moral of the story I think is never have any management by your company on your personal device(s). I'm waiting on a company laptop at the moment for the occassional need to do something from home as no way I'm allow them access to my personal laptop.



  • Registered Users, Registered Users 2 Posts: 15,389 ✭✭✭✭The Nal


    InTune seperates work and personal data. So if your company was hacked the hackers could only see whats in your work profile.



  • Registered Users, Registered Users 2 Posts: 5,158 ✭✭✭opus


    Does the remote erase command differentiate between work & personal stuff on a laptop or phone 🤔



  • Registered Users, Registered Users 2 Posts: 15,389 ✭✭✭✭The Nal


    If its a personal device then its just the work profile stuff.



  • Moderators, Education Moderators, Sports Moderators, Paid Member Posts: 12,408 Mod ✭✭✭✭artanevilla


    Have any HR files been compromised? Particularly those circa December 2019?



  • Registered Users, Registered Users 2 Posts: 11,137 ✭✭✭✭28064212


    If it's configured correctly. Lots of places just go with the default setup. No way I'd trust any employer to have invested enough in IT to actually implement, monitor, and enforce proper practices.

    You want me to use a device for work? You provide the device

    Boardsie Enhancement Suite - a browser extension to make using Boards on desktop a better experience (includes full-width display, keyboard shortcuts, dark mode, and more). Now available through your browser's extension store.

    Firefox: https://addons.mozilla.org/addon/boardsie-enhancement-suite/

    Chrome/Edge/Opera: https://chromewebstore.google.com/detail/boardsie-enhancement-suit/bbgnmnfagihoohjkofdnofcfmkpdmmce



  • Registered Users, Registered Users 2 Posts: 15,389 ✭✭✭✭The Nal


    Depends. I prefer it on my own phone. Turn off notifications after 5pm-9am and weekends. Dont like bringing two phones around.

    Laptop sure, I'll have a company one.



  • Advertisement
  • Registered Users, Registered Users 2, Paid Member Posts: 29,799 ✭✭✭✭_Kaiser_


    Absolutely - I occasionally have people ask if I'd not rather just have one phone to carry around, but I'll happily stick with 2 separate ones as I have for the last 20 years.

    Never bought into this BYOD (Bring Your Own Device) idea - supposedly convenience for staff but really a cost saving exercise IMO and a nightmare for IT staff (what do you mean my 9 year old laptop with it's Celeron processor is the problem? It works fine for my email!)

    The company can do what they want to on their device but mine is my own. Also, do I want my personal number getting shared with colleagues or customers? What about if I leave? Should I have to get a new number so they don't keep calling me? Or feel like I should read that email that came in at 7pm last night because it came on the same phone I was watching YouTube or reading on?

    No thanks. Carrying a separate handset is a small price to pay.



  • Registered Users, Registered Users 2 Posts: 1,726 ✭✭✭Benedict XVI


    Someone had global admin rights and the password 26CLIAM



Advertisement
Advertisement